An open redirect vulnerability exists in Rudloff/alltube that could let an attacker construct a URL within the application that causes redirection to an arbitrary external domain via Packagist in versions prior to 3.0.1.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view